Kernel crash dumps may include physical memory which should not be available to an unauthorized person. This presentation describes the current implementation of encrypted crash dumps and explains how PEFS was used in order to access dumps. (Google Summer of Code 2013)